Remote Code Execution Vulnerability in Cisco Wireless LAN Controller Software
CVE-2018-0245
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 2 May 2018
What is CVE-2018-0245?
A vulnerability in the REST API of Cisco 5500 and 8500 Series Wireless LAN Controller Software allows an unauthenticated, remote attacker to access restricted system information. This issue originates from insufficient input validation protocols within the REST API URL requests. By crafting a malicious URL, an attacker can exploit this flaw to gain insights into sensitive details that are typically secured from unauthorized access. The exposure poses a risk to the integrity of network operations and demand immediate attention to prevent unauthorized disclosures of system configurations and data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco 5500 and 8500 Series Wireless LAN Controller Cisco 5500 and 8500 Series Wireless LAN Controller
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved